Cache pollution occurs in Windows when incorrect DNS responses fill your DNS server's cache with responses from domains other than the one the DNS query itself requested. For example, if you requested a domain www.mydomain.com and the referral returned the address of www.spamismylife.com, that reference will be stored in your DNS cache. Multiple referrals might be returned, but this sort of thing not only is frustrating to users in that it sends them to the wrong site, but it clogs up the arteries of your DNS server making requests take longer than necessary to be returned.
In most cases the default behavior is to store referrals, and that's not a problem for small systems serving a few users. However, for large networks, or those that require optimal performance, you will want to get rid of any referrals that are from a domain other than the one requested. This option in the Window DNS Server is called Secure cache against pollution (an apt term) and it's found in the DNS Properties dialog box as a check box that you need to enable.
Here's how you get to it:
- Open the DNS Management console in the MMC
- Right click on the DNS server of interest and select the Properties command.
- Click on the Advanced tab, then click on the Secure cache against pollution check box.
- Click OK to save your setting.
Barrie Sosinsky is president of consulting company Sosinsky and Associates (Medfield MA). He has written extensively on a variety of computer topics. His company specializes in custom software (database and Web related), training and technical documentation.